The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Verifying the installation

Prev Next

To verify that the IOC Streaming module is installed and running:

  1. Go to Modules > Endpoint Module Administration > Installed Modules and check if the IOC Streaming module is displayed in the list.

    Verifying_1.png
  2. Also, you can verify if your policies are correctly configured by reviewing them on the Endpoint Security Web UI, or by viewing the discrete policy settings using the API Documentation module. This displays if the module is enabled and the associated module configuration that is aligned to that policy.

    Verifying_2.png

    In the example below, you will find a sample IOC Streaming configuration aligned to a policy.

    Verifying_3.png
  3. You can take this verification to another level by interrogating the configuration for a specific endpoint in your host population. Using the agentID of that endpoint you can fetch the configuration that is composed for that specific host using the Host information API. Refer to the operation indicated below.

    Verifying_4.png

The Host Management module provides a view of what is installed on each host for your endpoints connected to the Endpoint Security Server. When the IOC Streaming module is installed, it makes additional columns available to be displayed within this view. If the columns are not shown, you can make them visible using the column manager tool above the grid in the Host Management view.

  • IOC Streaming Status

  • IOC Streaming Version

To verify that the IOC Streaming module is installed and running on a host, use this view to locate the target host and observe the values within these two columns. You should find that the value of status is running.